HimalayasHimalayas logo
A-LIGNAL

Senior IT Auditor – FISMA/FedRAMP

A-LIGN is a technology-enabled security and compliance partner trusted by global organizations to mitigate cybersecurity risks through a single-provider approach for various audit and certification services.

A-LIGN

Employee count: 501-1000

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

About the Role

The FISMA/FedRAMP Senior Consultant works independently and collaboratively to support and lead client engagements within A-LIGN’s FISMA and FedRAMP practices. In this role, the Senior Consultant is responsible for managing standard project execution, overseeing client service activities, assigning work, reviewing team contributions, and ensuring quality reports are delivered. The Senior Consultant provides leadership to Staff Consultants through engagement management and ongoing mentorship.

Additionally, the Senior Consultant supports continued organizational growth by contributing to methodology development, technical assessment strategy, and engagement planning as a technical subject matter expert. Using strong experience with FISMA, FedRAMP, and familiarity with the NIST Risk Management Framework (RMF), this role supports and leads teams performing assessments for cloud computing technologies in support of federal compliance requirements.

Reports to

FISMA/FedRAMP Manager

Pay Classification

Full-Time, Exempt

Responsibilities

  • Lead assessments from initiation to project closure including:
    • Planning/Closing Meeting
    • Process Walkthroughs
    • Leading Findings Discussion
    • Regular status updates internally and externally
  • Coach other team members and assessors as part of team
  • Drive working sessions with clients to ensure expectations and direction are aligned and timelines are being met
  • Execute security assessments in accordance with NIST SP 800-53, 800-37, 800-171, and other authoritative IT security guidance
  • Develop Security Authorization Packages and ensure completeness and compliance with FedRAMP requirements and other authoritative IT security guidance

Minimum Qualifications

EDUCATION

  • Bachelor’s degree in management information systems, information security, computer science, or relevant discipline; or combination of relevant education and work experience
  • Master’s degree is a plus

EXPERIENCE

  • At least 3 years of experience in information security, with strong NIST experience (in order of preference): NIST SP 800-53, FedRAMP, RMF, FISMA, NIST SP 800-171
  • Demonstrated knowledge of NIST publications, such as: NIST SP 800-30 rev 1, 800-37 rev 1 or 2, 800-53 rev 4, 800-53A rev 4, 800-60 Vol 1 & 2 rev 1, and 800-171 rev 1
  • Experience with government compliance, including FISMA, FedRAMP, RMF, and CSF
  • Experience with commercial cloud environments; architectures, technologies, and services
  • Lead at least five FedRAMP or FISMA engagements from kick-off to report delivery

CERTIFICATIONS

  • At least one advanced cybersecurity certification such as: CISSP, CISM, CISA, CCSP, CRISC, CAP, CASP, or other relevant security certifications, multiple are preferred
  • At least one vendor-specific cloud-related technology certifications such as: AWS, MS Azure, Google Cloud, Cisco Cloud, VMWare, etc. is preferred
  • PMP is a plus

SKILLS

  • Ability to meet deadlines with a high degree of motivation working in a fast-paced environment
  • Ability to lead multiple assessment engagements and train junior staff
  • Excellent communication skills to include the ability to explain technical matters to a non-technical audience
  • Broad IT background with technical understanding of networks, protocols, security configurations, cryptography, identity and access management, and the systems development life cycle

Benefits

  • Healthcare, Dental, and Vision Benefits
  • Employer Paid Life Insurance and Disability Insurance
  • EAP - Employee Assistance Program
  • Pet Insurance
  • 401(k) Plan with Employer Matching
  • Competitive Bonus Structure
  • Home Office Reimbursement
  • Certification Reimbursement
  • Personalized Career Coaching
  • Generous Paid Time Off
  • Paid Office Closure December 25-January 1
  • Vacation Bonus
  • Summer Hours

About A-LIGN

A-LIGN is the leading provider of high-quality, efficient cybersecurity compliance programs. Combining experienced auditors and audit management technology, A-LIGN provides the widest breadth and depth of services including SOC 2, ISO 27001, HITRUST, FedRAMP, and PCI. A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn more, visit a-lign.com

Come Work for A-LIGN!

Apply online today at A-LIGN.com and learn about life at A-LIGN by following us on LinkedIn.

A-LIGN is an Equal Opportunity Employer. Minorities, women, disabled, and veterans encouraged to apply!

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Education

Bachelor degree

Experience

3 years minimum

Experience accepted in place of education

Location requirements

Hiring timezones

United States +/- 0 hours

About A-LIGN

Learn more about A-LIGN and their company culture.

View company profile

We are A-LIGN, a global cybersecurity and privacy compliance solutions provider. Since our founding in 2009, we've been dedicated to helping organizations like yours navigate the complex world of regulatory requirements and business-driven security needs. We understand that in today's digital landscape, demonstrating trust and respect to your stakeholders is paramount. That's why we offer a single-provider approach, combining innovative technology with the expertise of seasoned auditors to deliver high-quality, efficient cybersecurity compliance programs.

Our mission is to empower your business to reach its fullest potential by aligning your compliance objectives with your strategic goals. We believe that robust security and compliance are not just necessities, but competitive advantages. We partner with you to mitigate cybersecurity risks, offering a wide breadth and depth of services including SOC 2, ISO 27001, HITRUST, FedRAMP, CMMC, PCI, and penetration testing. In fact, we're proud to be the number one issuer of SOC 2 and HITRUST reports and a top three FedRAMP assessor. We work with over 5,000 global organizations, from startups to enterprise businesses, and our proprietary compliance management platform, A-SCEND, streamlines the audit process, making it easier for you to manage communication, track progress, and centralize evidence collection. We're committed to your success, providing a quality experience from start to finish, built on integrity, honest communication, and a vision to help you overcome your unique compliance and cybersecurity challenges. We're constantly innovating and staying ahead of emerging requirements to ensure you're always up-to-date with industry changes.

Claim this profileA-LIGN logoAL

A-LIGN

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

15 remote jobs at A-LIGN

Explore the variety of open remote roles at A-LIGN, offering flexible work options across multiple disciplines and skill levels.

View all jobs at A-LIGN

Remote companies like A-LIGN

Find your next opportunity by exploring profiles of companies that are similar to A-LIGN. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan